RANSOMWARE VICTIMDUPLICATE CLAIM

We will be back soon

TENGU📅 January 30, 2026
8
same group

Attack Intelligence

We will be back soon was compromised in a ransomware attack attributed to TENGU in January 2026. The organization, operating in an undisclosed sector in Unknown, was added to the group's data leak site as part of an extortion campaign.

TENGU operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

We are currently preparing all the files of the companies we hacked and will publish them for you. We will disappear for a while to fix some internal issues and will return with a new TENGU RaaS version that everyone can join

Additional Details

Other Victims — TENGU (8)

Quick Facts

Attack DateJan 30, 2026
Intel Sourceransomware.live
StatusDUPLICATE CLAIM

Threat Group

TENGU
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.